Tạo IAM Role
- Truy cập AWS Management Console

- Trong giao diện IAM
- Chọn Roles
- Chọn Create role

- Trong giao diện Select trusted entity
- Chọn AWS service
- Chọn EC2
- Chọn Next

- Trong giao diện Add permissions
- Tìm AmazonSSMManagedInstanceCore policy
- Chọn AmazonSSMManagedInstanceCore policy
- Chọn Next

- Trong bước Name, review, and create
- Role name, nhập
Windows-Lab-SSM-Role

- ChọnCreate role

- Vậy là đã tạo role cho Windows Instance thành công
